URLhaus Database

Every malware URL on URLhaus is associated with a host. A host can be either an domain name or an IP address (in case the malware URL is hosted on an IP address and doesn't use a domain name). This page shows all malware URLs that are associated with the host www.wzgysg.com.

Database Entry

Spamhaus DBL:Abused domain (botnet C&C)
SURBL:Not listed
Firstseen:2018-05-14 15:54:58 UTC

IP addresses

The table below shows all IP address obsered for this particular host (in case the host is a domain name, all A records will be listed - including all historical ones).

Firstseen (UTC)IP addressHostnameSBLASNCountryActive?
2019-03-30 23:20:27127.0.0.1localhostNot listedAS0 no
2018-05-14 15:55:14103.24.250.48Not listedAS132719 CWDDTCL-AS-AP Chengdu West Dimension Digital Technology Co., Ltd- CNyes

Malware URLs

The table below shows all malware URLs that are associated with this particulare host.

Dateadded (UTC)URLStatusTagsGSBReporter
2018-05-14 15:55:14http://www.wzgysg.com/update.phpOfflineAgentTesla GandCrab heodo Loki Ransomware Ransomware.GandCrab Clean@JAMESWT_MHT